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Why are we doing what we are doing? 
The State of IT Now 

Security Today 

The Future of Security 

How Qualys is Leading the Way 
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IT Transformation < 


Infrastructure & Application 


Digital 
Transformation 


Holistic Transformation of 
Business to Digital 


Cloud, Containers, laaS, PaaS, 


OT, lloT, loT, Mobility, Web 
apps, APIs, Mobile Apps 
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Hybrid Cloud Overview Architecture 


Work Stations 


Mobile Workforce 
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On-Premise 
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Containers 


Real game changer 


Hypervisor disappearing, bare 
metal is back 


Kubernetes Infrastructure-as-code 
Container-as-a-Service AWS Fargate 


AWS Lambda function-as-a-service, 
serverless! 


Kubefed? 


"Priceline" for Containers? 
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DevOps 


This is real and highly contagious 


Developer decides how 
infrastructure runs in production 


Speeds up significantly how fast 
code goes to production 


QSC Conference, 2018 


© Qualys. 


On-Prem 


Shrinking Datacenter Footprint 
Increasing OT & llo T 
Corp IT - more distributed & mobile 


More loT! 
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Enterprise 
Mobility != BYoD 


Enterprise owned handheld devices 
Indispensable to modern business 


Running apps handling sensitive 
business & consumer data 


Mobile! 
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Web Apps & 
APIs 


Web Apps for the humans 
APIs for the inhumans 


Wide window into all your data 
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SaaS 


More aaS everywhere 
No infrastructure to manage 


No Applications to code or manage 
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Security 


IBM PC AT 
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November 13, 1984 


PC Magazine about IBM PC AT 


“The AT provides the first real system for allowing 
executives to sleep at night: 


A hard-to-duplicate ‘tubular’ key locks all but key holders 


out of the SS wv 
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34 years later 


No magic key = No sleep at night! 
Same challenges x 10 


No visibility across global hybrid 
infrastructure 


Still need to do Vulnerability & 
Configuration management 


Still need to monitor integrity of systems(?) 


More data incoming into "SIEM" 
deployments 


Basically no visibility to respond 


Compliance demands on new infrastructure 
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IQ 
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Future of 
Security 


Transparent Orchestration 


Built-in Automation the only real 
solution 


Starts in DevOPs 


New generation of Security Analytics 
platforms 
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Qualys Platform 
Approach, Digital 


Transformation 


Massive expansion of backend for 
visibility - 

620 Billion security datapoints 
indexed 


Comprehensive coverage of sensors 
- scanners, agents, cloud connectors, 
container sensors, passive sniffers 
and mobile agents 
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Qualys Platform 
Approach... 
remediation & response 


Building dedicated Data science 
team 


Rapid expansion of R&D org 


Key technology acquisitions & 
Investments 
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Acquisitions & Investments 


Nevis Passive scanning € Secure access control 
Netwatcher Event Correlation Platform 
1Mobility Enterprise Mobility 
Layered Insight built-in Runtime container Security 
42Crunch Investment API security 


Frog 1 


Frog 2 
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Qualys Cloud Apps 


| ASSET MANAGEMENT | MANAGEMENT 


Asset Inventory CMDB Sync Cloud Inventory Certificate Inventory 


Maintain full, instant visibility of all your Synchronize asset information from Inventory of all your cloud assets across Inventory of TLS/SSL digital certificates on 
global IT assets Qualys into ServiceNow CMDB AWS, Azure, GCP and others a global scale 


Vulnerability Management Threat Protection Continuous Monitoring Indication of Compromise 
Continuously detect and protect against Pinpoint your most critical threats Alerts you in real time about network Continuously monitor endpoints to detect 
attacks, anytime, anywhere and prioritize patching irregularities suspicious activity 

Container Security cra| Certificate Assessment 
Discover, track, and continuously protect Assess all your digital certificates for TLS/ 
containers SSL vulnerabilities 


| COMPLIANCE MONITORING | MONITORING 


Policy Compliance PCI Compliance File Integrity Monitoring Security Configuration Assessment 
Assess security configurations of IT Automate, simplify and attain PCI Log and track file changes across global IT Automate configuration assessment of 
systems throughout your network compliance quickly systems global IT assets 
Cloud Security Assessment Security Assessment Questionnaire 
Get full visibility and control across Minimize the risk of doing business with 
all public cloud instances vendors and other third parties 


| WEB APPLICATION SECURITY| APPLICATION SECURITY 


Web Application Scanning Web Application Firewall 


Secure web applications with end-to-end Block attacks and virtually patch web 
protection application vulnerabilities 
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Q4 2018 - more apps to come 


o 2018 i 2019 


Patch Management - beta Global IT Asset Management 
(managed assets) - GA 


| 


Passive Network Senor 
(unmanaged assets) - beta 
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2019 - even more apps to come! 


Secure Enterprise Mobility 
Secure Access Control 

API Security 

Software Composition Analysis 
Attack Simulation Platform 


Data lake & correlation platform 
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Unified Dashboards 


TOP EOL SOFTWARE PUBLISHERS 


MISSING PATCHES BY PLATFORM. 


TOP 5 FAILING POLICIES 


FILE CHANGES BY CHANGE ACTION 


EXPIRING CERTIFICATES 
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It's the Platform! 


(a real one) 
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Thank You 


Sumedh Thakar 
sthakar@qualys.com 


